diff --git a/nix/nixos-module/firewall.nix b/nix/nixos-module/firewall.nix index 31369f8..4d6b27e 100644 --- a/nix/nixos-module/firewall.nix +++ b/nix/nixos-module/firewall.nix @@ -5,7 +5,7 @@ lib.mkIf config.site.hosts.${hostName}.firewall.enable { enable = true; extraCommands = '' ip46tables -A FORWARD -i core -m state --state ESTABLISHED,RELATED -j ACCEPT - ip46tables -A FORWARD -i core -j REJECT --reject-with net-unreach + ip46tables -A FORWARD -i core -j REJECT ''; extraStopCommands = '' ip46tables -F FORWARD